322 karma · joined February 27, 2015
>However, the company's response included a configuration change that disrupted VPN connectivity to the site. SoundCloud has not provided a timeline for when VPN access will be fully restored.
https://www.bleepingcomputer.com/news/security/soundcloud-co...
Education about a proper CLUB/PARTY night goes a long ways.
God bless the turbo soundsystem at the great beyond festival.
https://twitter.com/ostonox/status/1572264800616599552
https://nitter.rawbit.ninja/ostonox/status/15722648006165995...
Speedy J and Luke Slater https://www.youtube.com/watch?v=gVbQrn5BoA4
Lots of times the first comment will be a partial track list or I'll look up the tracklisting on mixesdb.
In the 90s to discover music it was you had to attend shows and crate dig or even call up the record label (long distance number!) and listen to the latest release over POTS.
I would always play along with the scammers. Mostly out of curiosity and bordem. I would practice my osint skills. And try to report domains for abuse.
That amount of hostility to scrapping and 3rd party clients feels like that they want to be in control of the data not you.
https://github.com/mitchellkrogza/nginx-ultimate-bad-bot-blo...
https://stribika.github.io/2015/01/04/secure-secure-shell.ht...
They also made the larger events (anomalies) paid entry, it was free before.
>...
>He spotted what he was looking for almost instantly: an IP address. In fact, to Gambaryan’s
>surprise, every thumbnail image on the site seemed to display, within the site’s HTML, the IP >address of the server where it was physically hosted: 121.185.153.64.
That is indeed an opsec failure, along with using that same IP on an exchange. Which later turns out to be a computer aka the abuse website in the guys apartment.
LAPSU$ extortion group, a group operating out of South America, claim to have breached NVIDIA and exfiltrated over 1TB of proprietary data.
LAPSU$ claims NVIDIA performed a hack back and states NVIDIA has successfully* ransomed their machines.
source: They have a server hosted online by Akami CDN that wasn't properly secure. After an internet wide nmap scan I found my target port open and went through a list of 370 possible servers based on details that nmap provided with an NSE script.
source: I used a python script I made to probe different aspects of the server including username defaults and unsecure file/folder access.
source: The folders were just lying open if you could guess the name of one. Then when you were in the folder you could go back to root and just click into the other folders that you didn't know the name of.
deletescape: holy shit that's incredibly funny
source: Best of all, due to another misconfiguration, I could masqurade as any of their employees or make my own user.
deletescape: LOL
source: Another funny thing is that on the zip files you may find password protected. Most of them use the password Intel123 or a lowercase intel123 source: Security at it's finest.